Skip to content
VulniPulse

Complete feed

Recently updated

Advisories the vendor has revised

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

High8.3Red Hat

High [CVE-2026-19169] Privilege escalation via crafted HTML page in Contextual Tasks

Privilege escalation via crafted HTML page in Contextual Tasks. Red Hat rates this important (CVSS 8.3). Weakness: CWE-79.

CVE-2026-19169
Unclassified
Aug 6, 2026
High8.2Red Hat

High [CVE-2026-19172] Sandbox escape via use after free in Views

Sandbox escape via use after free in Views. Red Hat rates this important (CVSS 8.2). Weakness: CWE-825.

CVE-2026-19172
Unclassified
Aug 6, 2026
High8.8Red Hat

High [CVE-2026-19170] Sandbox escape via use after free in WebGL

Sandbox escape via use after free in WebGL. Red Hat rates this important (CVSS 8.8). Weakness: CWE-825.

CVE-2026-19170
Unclassified
Aug 6, 2026
High8.4Red Hat

High [CVE-2026-19157] Sandbox escape via out-of-bounds write in Google Chrome on Android

Sandbox escape via out-of-bounds write in Google Chrome on Android. Red Hat rates this important (CVSS 8.4). Weakness: CWE-787.

CVE-2026-19157
Unclassified
Aug 6, 2026
High8.3Red Hat

High [CVE-2026-19149] Sandbox escape via use-after-free vulnerability in Aura

Sandbox escape via use-after-free vulnerability in Aura. Red Hat rates this important (CVSS 8.3). Weakness: CWE-825.

CVE-2026-19149
Unclassified
Aug 6, 2026
High7.5Red Hat

High [CVE-2026-67422] Denial of Service via Regular Expression Vulnerability

Denial of Service via Regular Expression Vulnerability. Red Hat rates this important (CVSS 7.5). Weakness: CWE-1333. Affected products named by the advisory: Red Hat Developer Hub; Red Hat Hardened Images; Self-service automation portal 2.

CVE-2026-67422
Unclassified
Aug 6, 2026
High8.7Red Hat

High [CVE-2026-66808] unsanitized hub ConfigMap data passed as CLI arguments to privileged install Job (argument injection)

unsanitized hub ConfigMap data passed as CLI arguments to privileged install Job (argument injection). Red Hat rates this important (CVSS 8.7). Weakness: CWE-88. Red Hat lists fixing advisory RHSA-2026:54432 with package multicluster-engine/hypershift-addon-rhel9-operator:1786912006, multicluster-engine/hypershift-addon-rhel9-operator:1786548381, multicluster-engine/hypershift-addon-rhel9-operator:1787259113, multicluster-engine/hypershift-addon-rhel9-operator:1787264068. Affected product named by the advisory: Multicluster Engine for Kubernetes.

CVE-2026-66808
Unclassified
Aug 6, 2026
High7.5Red Hat

High [CVE-2026-71436] Denial of Service via invalid X-Axis parameters

Denial of Service via invalid X-Axis parameters. Red Hat rates this important (CVSS 7.5). Weakness: CWE-835. Affected products named by the advisory: Red Hat OpenShift AI (RHOAI); Red Hat OpenShift Dev Spaces.

CVE-2026-71436
Unclassified
Aug 6, 2026
High8.1Red Hat

High [CVE-2026-43632] Potential code execution via a race condition in tokenization endpoints

Potential code execution via a race condition in tokenization endpoints. Red Hat rates this important (CVSS 8.1). Weakness: CWE-364.

CVE-2026-43632
Unclassified
Aug 6, 2026
High8.1Red Hat

High [CVE-2026-43631] Remote code execution via use-after-free vulnerability in llama-server

Remote code execution via use-after-free vulnerability in llama-server. Red Hat rates this important (CVSS 8.1). Weakness: CWE-825.

CVE-2026-43631
Unclassified
Aug 6, 2026
High8.1Red Hat

High [CVE-2026-43629] Arbitrary code execution via crafted KV cache state files

Arbitrary code execution via crafted KV cache state files. Red Hat rates this important (CVSS 8.1). Weakness: CWE-787. Affected product named by the advisory: Red Hat Enterprise Linux AI (RHEL AI) 3.

CVE-2026-43629
Unclassified
Aug 6, 2026
High7.8Red Hat

High [CVE-2026-43627] Arbitrary Code Execution via Integer Overflow in Memory Allocation

Arbitrary Code Execution via Integer Overflow in Memory Allocation. Red Hat rates this important (CVSS 7.8). Weakness: CWE-805. Affected product named by the advisory: Red Hat Enterprise Linux AI (RHEL AI) 3.

CVE-2026-43627
Unclassified
Aug 6, 2026
High7.8Red Hat

High [CVE-2026-7867] Local Privilege Escalation via as-user option spoofing

Local Privilege Escalation via as-user option spoofing. Red Hat rates this important (CVSS 7.8). Weakness: CWE-863. Red Hat lists fixing advisory RHSA-2026:53435 with package udisks2-0:2.11.0-2.el10_2.1. Affected product named by the advisory: Red Hat Enterprise Linux 10.

CVE-2026-7867
Unclassified
Aug 6, 2026
High7.5Red Hat

High [CVE-2026-18427] @fastify/static: @fastify/static: Information disclosure via route guard bypass

@fastify/static: @fastify/static: Information disclosure via route guard bypass. Red Hat rates this important (CVSS 7.5). Weakness: CWE-41. Affected products named by the advisory: Red Hat Enterprise Linux AI (RHEL AI) 3; Red Hat OpenShift AI (RHOAI).

CVE-2026-18427
Unclassified
Aug 6, 2026
High8.1Red Hat

High [CVE-2026-34191] SQL Injection via apr_dbd_oracle

SQL Injection via apr_dbd_oracle. Red Hat rates this important (CVSS 8.1). Weakness: CWE-89.

CVE-2026-34191
Unclassified
Aug 6, 2026
High7.5Vendor: MediumRed Hat

High [CVE-2026-34501] Heap buffer overflow in redis client

Heap buffer overflow in redis client. Red Hat rates this moderate (CVSS 7.5). Weakness: CWE-120. Red Hat lists fixing advisory RHSA-2026:58474 with package apr-util-main-1.6.5-1.hum1. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Hardened Images; Red Hat package: apr-util.

CVE-2026-34501
Red Hat Enterprise Linux
Aug 6, 2026
High7.5Vendor: MediumRed Hat

High [CVE-2026-34502] Heap buffer overflow in APR memcached client

Heap buffer overflow in APR memcached client. Red Hat rates this moderate (CVSS 7.5). Weakness: CWE-120. Red Hat lists fixing advisory RHSA-2026:58474 with package apr-util-main-1.6.5-1.hum1. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 6; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; and 3 more. Affected products named by the advisory: Red Hat Enterprise Linux 9; Red Hat Hardened Images; Red Hat package: apr-util.

CVE-2026-34502
Red Hat Enterprise Linux
Aug 6, 2026
High8.1Red Hat

High [CVE-2026-46581] com.sun.faces:jsf-impl: org.glassfish:jakarta.faces: mojarra: Unauthenticated RCE in EAP JSF applications via EL injection in ui:include

com.sun.faces:jsf-impl: org.glassfish:jakarta.faces: mojarra: Unauthenticated RCE in EAP JSF applications via EL injection in ui:include. Red Hat rates this important (CVSS 8.1). Weakness: CWE-94. Red Hat lists fixing advisory RHSA-2026:53806 with package eap7-ironjacamar-0:1.5.26-2.Final_redhat_00001.1.el7eap, eap7-undertow-0:2.2.40-2.SP3_redhat_00001.1.el7eap, eap7-wildfly-0:7.4.25-2.GA_redhat_00001.1.el7eap, eap7-netty-0:4.1.135-1.Final_redhat_00001.1.el7eap. Affected products named by the advisory: Red Hat JBoss Enterprise Application Platform 7; Red Hat JBoss Enterprise Application Platform 8.

CVE-2026-46581
Unclassified
Aug 6, 2026
High8.8Red Hat

High [CVE-2026-68480] Safe RET Interrupt Vulnerability

Safe RET Interrupt Vulnerability. Red Hat rates this important (CVSS 8.8). Weakness: CWE-201. Affected products named by the advisory: Red Hat Enterprise Linux 10; Red Hat Enterprise Linux 7; Red Hat Enterprise Linux 8; Red Hat Enterprise Linux 9.

CVE-2026-68480
Unclassified
Aug 6, 2026
High8.1Red Hat

High [CVE-2026-66909] Remote Code Execution via unsafe deserialization of JMS ObjectMessage

Remote Code Execution via unsafe deserialization of JMS ObjectMessage. Red Hat rates this important (CVSS 8.1). Weakness: CWE-502. Affected products named by the advisory: Red Hat build of Apache Camel for Spring Boot 4; Red Hat JBoss Enterprise Application Platform 7; Red Hat JBoss Enterprise Application Platform 8; Red Hat JBoss Enterprise Application Platform Expansion Pack; and 1 more. Affected products named by the advisory: Red Hat Single Sign-On 7.

CVE-2026-66909
Unclassified
Aug 6, 2026